Product
Your SIEM, our detection engineering, no black boxes: Introducing Expel Managed SIEM

We're launching Expel Managed SIEM: a transparent, co-managed service for Splunk and Microsoft Sentinel paired with Expel MDR.

Product | 3 min read
What we built: March 2026

In March, Expel shipped four new features and one new integration we're sharing with you, including our new Mimecast email integration.

Product | 2 min read
Mimecast customers: Expel MDR for Email is now available for you

Expel MDR coverage for email now supports Mimecast, adding a fourth email security integration to our lineup.

Expel culture | 4 min read
Meet the Expletive: Ben Brigida, Senior Director, SOC Operations

Meet Ben Brigida, Expel's Senior Director of SOC Operations and learn how he went from hunting bats to hunting threats.

Current events | 5 min read
The UK’s policy debate isn’t just a consumer story, it’s an enterprise security problem

68.6% of incidents involved identity-based attacks targeting remote access. Here's why the UK's VPN debate is an enterprise security problem.

Threat intel | 3 min read
On the radar: ChatGPT Stealer

Malicious browser extensions are secretly monitoring and stealing users' AI conversations, known as prompt poaching. Here's what to look for.

Product | 2 min read
Your SIEM, our detection engineering, no black boxes: Introducing Expel Managed SIEM

We're launching Expel Managed SIEM: a transparent, co-managed service for Splunk and Microsoft Sentinel paired with Expel MDR.

Product | 2 min read
New Ruxie AI power-up: Related alert summaries turns endless logs into an instant attack narrative

Our new Ruxie AI power-up, related alert summaries, automatically analyzes and transforms disparate source alerts into a clear, chronological narrative.

Product | 4 min read
New Ruxie power-up: AI detection agent automatically layers defenses on new third-party alerts

Expel's latest Ruxie power-up, detection agent, automatically identifies coverage gaps in vendor telemetry and proposes new detection rules.

Company news | 3 min read
Security you can see: What Expel is bringing to RSAC 2026

RSAC 2026 is almost here. Expel will be at booth #N-5261 with real SOC analysts, several sessions, games, swag, and more. See you there.

Product | 3 min read
Direct to the SOC: Enhanced collaboration with Expel’s analysts

We're introducing bi-directional threaded commenting that natively connects Slack and Teams to Expel Workbench.

MDR | 6 min read
Cybersecurity ROI: Attackers benefit from security & finance misalignment

Report from Expel reveal how the communication gap between CISOs and CFOs is fueling preventable breaches — and what security leaders can do to fix it.

Data & research | 9 min read
Measuring incident quality to drive detection strategy

We’re sharing our mathematical process on how we calculated incident strength to help identify and prioritize detection improvements.